Microsoft Issues Apology for Removing Popular VSCode Extensions Used by Millions

Published:

spot_img

Microsoft Reinstates Popular VSCode Extensions After Security Controversy

Microsoft Reinstates Popular VSCode Extensions After Security Controversy

In a surprising turn of events, Microsoft has reinstated the ‘Material Theme – Free’ and ‘Material Theme Icons – Free’ extensions on the Visual Studio Marketplace, following a thorough investigation that concluded the obfuscated code within them was not malicious. The extensions, which boast over 9 million installations, were removed in late February due to security concerns raised by community members and Microsoft’s own security researchers.

The controversy began when researchers Amit Assaraf and Itay Kruk flagged the extensions for containing suspicious code execution capabilities. Their AI-powered scanners detected multiple red flags, leading to the immediate removal of the extensions and the banning of their publisher, Mattia Astorino, known as ‘equinusocio.’ At the time, Microsoft stated that the decision was made to protect users from potential threats.

Astorino vehemently denied any malicious intent, attributing the issues to an outdated dependency used to display release notes. He claimed that had Microsoft reached out, he could have swiftly resolved the concerns. “There was nothing malicious,” he stated, explaining that the obfuscation process unintentionally included harmless strings from an old build script.

In a recent GitHub post, Microsoft’s Scott Hanselman acknowledged the mistake, apologizing to Astorino for the hasty actions taken. “We moved fast and we messed up,” he admitted, emphasizing that the investigation led to an incorrect conclusion. He also announced plans to revise the marketplace’s policies regarding obfuscated code to prevent similar incidents in the future.

Astorino has since rewritten the extensions, assuring users of their safety. With the reinstatement, both extensions are now available again, much to the relief of their dedicated user base.

spot_img

Related articles

Recent articles

Ukraine Exposes Cyber Attack on Russian Warplane Manufacturer Tupolev

Ukraine Claims Cyber Breach at Russian Warplane Manufacturer Tupolev Recent developments in the ongoing conflict between Ukraine and Russia reveal that Ukraine has reportedly successfully...

Rethinking Data Resilience: A Call for Realism

## Cybersecurity and Data Resilience: A Growing Concern for Organizations Dave Russell, Senior Vice President and Head of Strategy at Veeam, highlights a pressing issue...

Security Alert: Top Chrome Extensions Expose API Keys and User Data

Security Concerns Surrounding Popular Google Chrome Extensions Published: June 5, 2025 | Author: Ravie Lakshmanan Categories: Browser Security / Online Safety Introduction to the Risks Cybersecurity experts have...

“Transforming Sales with Conversational AI: The Future of Sales Excellence” – Daniel Wagner, CEO of Rezolve AI

Transforming Digital Commerce: The Vision of Daniel Wagner and Rezolve AI The UAE has long been recognized for its ambition to shape the future. In...